LinuxQuestions.org
Share your knowledge at the LQ Wiki.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Server
User Name
Password
Linux - Server This forum is for the discussion of Linux Software used in a server related context.

Notices


Reply
  Search this Thread
Old 02-24-2012, 12:35 AM   #1
samalombo
LQ Newbie
 
Registered: Feb 2012
Posts: 7

Rep: Reputation: Disabled
Question LDAP or AD via windows


I gents.

I want to change our actual authentication mode from nis to LDAP or AD, therefore I would like to know what do you suggest and why?
 
Old 02-24-2012, 01:31 AM   #2
Satyaveer Arya
Senior Member
 
Registered: May 2010
Location: Palm Island
Distribution: RHEL, CentOS, Debian, Oracle Solaris 10
Posts: 1,420

Rep: Reputation: 305Reputation: 305Reputation: 305Reputation: 305
Which linux OS you are using?
 
Old 02-24-2012, 03:20 AM   #3
samalombo
LQ Newbie
 
Registered: Feb 2012
Posts: 7

Original Poster
Rep: Reputation: Disabled
I am using Redhat 5R2
 
Old 02-24-2012, 03:34 AM   #4
Satyaveer Arya
Senior Member
 
Registered: May 2010
Location: Palm Island
Distribution: RHEL, CentOS, Debian, Oracle Solaris 10
Posts: 1,420

Rep: Reputation: 305Reputation: 305Reputation: 305Reputation: 305
When your machine is connected to a network, you can change the authentication method you set during installation or afterwards. Users are administered centrally on a NIS and LDAP server for all systems in the network.
Checkout this link: http://docs.redhat.com/docs/en-US/Re...ntication.html
 
1 members found this post helpful.
Old 02-24-2012, 04:11 AM   #5
samalombo
LQ Newbie
 
Registered: Feb 2012
Posts: 7

Original Poster
Rep: Reputation: Disabled
Hi Dear.
But you did not told me between LDAP and AD Windows acthentication what is better and why?
 
Old 02-26-2012, 02:58 PM   #6
Satyaveer Arya
Senior Member
 
Registered: May 2010
Location: Palm Island
Distribution: RHEL, CentOS, Debian, Oracle Solaris 10
Posts: 1,420

Rep: Reputation: 305Reputation: 305Reputation: 305Reputation: 305
Active Directory is a database based system that provides authentication, directory, policy, and other services in a Windows environment

LDAP (Lightweight Directory Access Protocol) is an application protocol for querying and modifying items in directory service providers like Active Directory, which supports a form of LDAP.

LDAP is a standard, AD is Microsoft's (proprietary) implementation (and more). Wikipedia has a good article that delves into the specifics. I found this document with a very detailed evaluation of AD from an LDAP perspective.

LDAP is a protocol specification for directory data.

Active Directory is Microsoft's Implementation of an LDAP based directory server.

AD also has custom extensions ontop of the LDAP v3 spec such as account lockout, password expiration, etc.

Active Directory isn't just an implementation of LDAP by Microsoft, that is only a small part of what AD is. Active Directory is (in an overly simplified way) a service that provides LDAP based authentication with Kerberos based Authorization.

Of course their LDAP and Kerberos implementations in AD are not exactly 100% interoperable with other LDAP/Kerberos implementations...

There are lots of systems that support LDAP to talk to them, not just Active Directory.

Sun, IBM, Novell all have directory services that are very effective as LDAP servers.

Short answer: AD is a directory services database, and LDAP is one of the protocols you can use to talk to it.

So, the conclusion is LDAP is better according to me..

Last edited by Satyaveer Arya; 02-26-2012 at 03:03 PM.
 
1 members found this post helpful.
Old 02-27-2012, 12:43 AM   #7
samalombo
LQ Newbie
 
Registered: Feb 2012
Posts: 7

Original Poster
Rep: Reputation: Disabled
Thumbs up LDAP or AD via windows

Dear Satyaveer.
Many thanks for you replay and now I am well clerified.
 
Old 02-27-2012, 01:36 AM   #8
manyrootsofallevil
Member
 
Registered: Dec 2010
Distribution: Red Hat, Kubuntu
Posts: 130

Rep: Reputation: 14
Quote:
Originally Posted by samalombo View Post
Dear Satyaveer.
Many thanks for you replay and now I am well clerified.
The other question is which version of Windows you want to use?

I've got a couple of posts on how to join (RHEL6 or CentOS 6.2) to a 2k3 or 2k8 domain.

I believe that the way authentication to LDAP works in RHEL6 has changed with respect to RHEL5, so I don't know how much of it will be applicable.

I've not been able to get SSO working, [hesitates ..] yet
 
Old 02-27-2012, 01:37 AM   #9
Satyaveer Arya
Senior Member
 
Registered: May 2010
Location: Palm Island
Distribution: RHEL, CentOS, Debian, Oracle Solaris 10
Posts: 1,420

Rep: Reputation: 305Reputation: 305Reputation: 305Reputation: 305
Good to know that the topic is clear to you now.
 
Old 02-27-2012, 01:39 AM   #10
Satyaveer Arya
Senior Member
 
Registered: May 2010
Location: Palm Island
Distribution: RHEL, CentOS, Debian, Oracle Solaris 10
Posts: 1,420

Rep: Reputation: 305Reputation: 305Reputation: 305Reputation: 305
Now if your problem has been solved, you can mark the thread as SOLVED.
 
1 members found this post helpful.
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
[SOLVED] LDAP with windows machine deep27ak Linux - Server 10 02-01-2012 09:32 PM
ldap and windows 7 finsh Linux - Server 5 09-18-2011 04:25 AM
Ldap integration with Windows DC bkcreddy17 Linux - Server 1 01-18-2009 04:15 PM
How to ldap with windows finsh Linux - Server 2 09-14-2008 03:35 PM
LDAP windows 2000 Ammad Linux - Security 1 07-18-2004 08:13 PM

LinuxQuestions.org > Forums > Linux Forums > Linux - Server

All times are GMT -5. The time now is 04:00 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration